To me stopping the poor reputation file warning is a bit heavy handed. We used to get the same WU files warnings on our managed WSUS server for “new” updates that just got published and if those were approved for distribution to the clients, the warning was showing also on our end point machines.

Would it not be wiser to just add the Windows Update URLs to the exclusion list?